| 以下是引用片段: ----------------------------------------------------------------- | PHPWind 5.x Exploits | | | | Powered by HamFast V1.12 20070101 | | | \---------------------------------------------------------------/ ATTANTION: Only do this bug test on your board! Don't attack any other site! ----------------------------------------------------------------- BUGS: Here is a very dangerous bug for PHPWind 5.x!!!! You can change any user's password or register as a new user. Ofcouse, you can change the admin's password, then the board will be under control. Maybe 80% of PHPWind boards have this bug. This tools can exploit PHPWind 5.0.1 AND PHPWind 5.3. ---------------------------------------------------------------- |
GUI版:
GUI版下载地址: 点击下载
压缩包里三个文件:
boardlist.txt 作者还列出来的N多用了phpwind论坛的网站
pw5expgui.exe 主程序
readme.txt 说明
命令行版:
点击下载
| [0day]PHPWind 5.x Exploits GUI | 04-07 | |
| dxbbs漏洞(通杀7.3以前所有版本) | 04-06 | |
| 记对一足球推荐站点的渗透 | 04-06 | |
| 注射DB_ONER权限并且主机与数据库 | 04-06 | |
| bbsxp sql最新版再爆0day? | 04-02 | |
| BBS的通杀跨站方法 | 04-02 | |
| CCTV的XSS跨站 | 03-28 | |
| 全面解析百度XSS跨站漏洞 | 03-26 | |
| Wordpress 2.1.2 以及之前版本物 | 03-26 | |
| 动易最新入侵方法 | 03-15 | |
| PJBlog漏洞利用 | 03-14 | |
| DVBBS <= 7.1.0 sp1 博客 远程注 | 03-14 | |